agent-swarm-issue

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The analyzed fragment describes a coherent, feature-rich workflow for issue-driven swarm coordination leveraging GH CLI, ruv-swarm, and Claude Flow hooks. It aligns with its stated goals of automatic decomposition, agent assignment, progress tracking, and reporting. While the approach is powerful, it depends on multiple external tools and automation layers, which elevates risk around unauthorized mass mutations and data exposure in shared environments. The absence of explicit access controls, input validation details, and safety gates warrants careful deployment with strict governance, audit logging, and per-action safeguards. Overall security risk is moderate due to automation breadth but no evidence of malware or data leakage beyond standard APIs.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 18, 2026, 10:21 PM
Package URL
pkg:socket/skills-sh/ruvnet%2Fruflo%2Fagent-swarm-issue%2F@84c99a2e47da739ee478419b19307a9054980685